1. Home
  2. Jobs
  3. United States
  4. California
  5. Azure Security Engineer
  6. Cyber Security Architect (Azure Cloud Security)
PR
Pipe Recruitpiperecruit.com

Cyber Security Architect (Azure Cloud Security)

California, United StatesFull-time2w ago

Job Title: Cyber Security Architect (Azure Cloud Security)
Location: Sylmar, CA (Day 1 Onsite)

Job Type: Contract

Key Responsibilities:

  1. Azure Security Implementation:
    • Design and implement security controls for AKS Cluster, Active Directory, MFA, APIs, and Azure AD B2C.
    • Apply zero trust architecture principles and implement mTLS and Azure Managed Identities.
    • Secure both control plane and data plane in Azure environments.
  2. Threat Modeling and Risk Management:
    • Conduct threat modeling using frameworks like STRIDE (Spoofing, Tampering, Repudiation, Information Disclosure, Denial of Service, Elevation of Privilege).
    • Perform security risk analysis using CVSS 3.0/3.1 and evaluate residual risks.
    • Develop and maintain a Security Risk Management Plan, Traceability Matrix, and Security Risk Management Report.
  3. Security Monitoring and Documentation:
    • Monitor security at both platform and application levels.
    • Document system designs, threats, and mitigation strategies, including screenshots and detailed reports.
    • Create a Cybersecurity Bill of Materials (CBOM) and ensure compliance with security standards.
  4. Threat Modeling Process:
    • Identify critical assets, decompose applications, and map threats using STRIDE.
    • Rate risks using appropriate tools and generate comprehensive reports.

Required Skills and Qualifications:

  1. Technical Expertise:
    • In-depth knowledge of Azure security services, including AKS, Active Directory, MFA, and ADB2C.
    • Strong understanding of zero trust architecture, mTLS, and Azure Managed Identities.
    • Familiarity with control plane and data plane security implementation.
  2. Threat Modeling and Risk Management:
    • Proficiency in threat modeling methodologies (e.g., STRIDE).
    • Experience with CVSS 3.0/3.1 for risk scoring and analysis.
  3. Documentation and Reporting:
    • Ability to create high-quality security documents, including CBOMs, traceability matrices, and risk reports.
  4. Soft Skills:
    • Strong analytical and problem-solving abilities.
    • Excellent attention to detail and organizational skills.
    • Ability to work independently and manage multiple tasks effectively.

Key Tools and Frameworks:

  • Azure Security Tools
  • STRIDE Model
  • CVSS 3.0/3.1
  • Traceability Matrix Tools